ThreatCluster

CISA Flags OpenPLC ScadaBR Vulnerability as Actively Exploited

First seen 2 Dec 2025, 13:43 UTC WebpronewsIndustrialcyber.Co 39

Article Content

Browse articles
ThreatCluster

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added the OpenPLC ScadaBR vulnerability, tracked as CVE-2021-26829, to its Known Exploited Vulnerabilities catalog after confirming active exploitation. This vulnerability affects versions 0.9.1 on Linux and 1.12.4 on Windows, allowing stored XSS attacks, which pose significant risks to federal systems.